CVE-2008-5698
Published: 22 December 2008
HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service (application crash) via an invalid document.load call that triggers use of a deleted object. NOTE: some of these details are obtained from third party information.
Notes
Author | Note |
---|---|
jdstrand | browser crash |
mdeslaur | PoC: http://www.milw0rm.com/exploits/6718 browser DoS, ignoring. |